Securely Manage Private VPC EC2 Instances using Systems Manager

   Go back to the Task List

  « 3. Create Security Group    5. Create VPC Endpoints »

4. Create IAM Role

You create IAM Role with AmazonSSMManagedInstanceCore Policy which is attached with the EC2 instances launched. It makes the instances managed instances.

  1. Goto the IAM Management console. Click on the Roles menu in the left and then click on the Create role button.

    IAM Role

  2. On the next screen, select EC2 as the service and click on the Next: Permissions button.

    IAM Role

  3. On the next screen, select AmazonSSMManagedInstanceCore as the policy and click on the Next: Tags button.

    IAM Role

  4. On the next screen, click on the Next: Review button.

  5. On the next screen, type in dojo-ssm-role for the Role name and click on the Create role button.

    IAM Role

  6. The role is created in no time. You configure VPC Endpoints in the next step.